Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 25 Oct 2000 20:43:05 +0200
From:      "James Wilde" <james.wilde@telia.com>
To:        =?iso-8859-1?B?UORyIFRob3Jlbg==?= <t98pth@student.hk-r.se>, <freebsd-security@FreeBSD.ORG>
Subject:   RE: Firewall
Message-ID:  <000701c03eb3$6932aa10$8208a8c0@iqunlimited.net>
In-Reply-To: <Pine.GSO.4.21.0010251834490.20165-100000@orc.rby.hk-r.se>

next in thread | previous in thread | raw e-mail | index | archive | help


> -----Original Message-----
> From: owner-freebsd-security@FreeBSD.ORG
> [mailto:owner-freebsd-security@FreeBSD.ORG]On Behalf Of Pär Thoren
> Sent: Wednesday, October 25, 2000 18:57
> To: freebsd-security@FreeBSD.ORG
> Subject: Firewall
>
>
>
> Hi!
>
> I want to protect a network with a firewall. The network is
> xx.xx.xx.0 and has a gateway at xx.xx.xx.1
> dns servers are xx.xx.xx.2 and xx.xx.xx.3

I should have said that I am assuming these dns servers are private, that is
purely for the use of name resolution on the internal network.  Received
wisdom maintains that public dns servers, along with smtp servers should be
on the outside as a result of weaknesses in the protocols.  This may have
changed with more modern versions of the standard daemons.

mvh/regards

James



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?000701c03eb3$6932aa10$8208a8c0>